Reset Search



WiNG Client Bridge will not stay online

« Go Back


TitleWiNG Client Bridge will not stay online
WiNG AP7602 bridge will not stay online
Client Bridge capable APs
  • AP6522
  • AP75xx (AP7502 not supported)
  • AP76xx
By default each WiNG 5 device is assigned the default Firewall Policy which is automatically mapped to default and user defined Profiles.
As the AP65xx/AP75xx/AP76xx will be deployed as a client bridge and not an infrastructure Access Point, all firewall services will be disabled.
Stateful packet inspection and policy enforcement will be primarily provided by the Wireless LAN infrastructure and not the AP65xx/AP75xx/AP76xx client bridges.

How to disable firewall - Copy and  paste the following into the CLI AP.
config t
firewall-policy default
no ip dos
no ip-mac conflict
no ip-mac routing conflict
no stateful-packet-inspection-l2
no firewall enable
com wr

How to verify firewall is disabled
#show running-config firewall-policy default 
firewall-policy default
no ip dos smurf
no ip dos twinge
no ip dos invalid-protocol
no ip dos router-advt
no ip dos router-solicit
no ip dos option-route
no ip dos ascend
no ip dos chargen
no ip dos fraggle
no ip dos snork
no ip dos ftp-bounce
no ip dos tcp-intercept
no ip dos broadcast-multicast-icmp
no ip dos land
no ip dos tcp-xmas-scan
no ip dos tcp-null-scan
no ip dos winnuke
no ip dos tcp-fin-scan
no ip dos udp-short-hdr
no ip dos tcp-post-syn
no ip dos tcphdrfrag
no ip dos ip-ttl-zero
no ip dos ipspoof
no ip dos tcp-bad-sequence
no ip dos tcp-sequence-past-window
no ip-mac conflict
no ip-mac routing conflict
no firewall enable
no stateful-packet-inspection-l2

Import Note:
default = your firewall policy name
Additional notes
On Infrastructure AP DHCP offer conversion or similar features converting broadcast DHCP Offer/ACKs to Unicast MUST be disabled to ensure wired host receive IP address via DHCP.



Was this article helpful?



Please tell us how we can make this article more useful.

Characters Remaining: 255